IT Security Governance, Risk & Compliance Analyst
We are looking for an IT Compliance Analyst/Information Security GRC Analyst to join our Security team and help strengthen the effectiveness and transparency of our security controls.
In this role, you will work across security compliance, control assurance, third-party risk, and security awareness. You will collaborate with Security, Legal, Procurement, technical and business teams to ensure controls are supported by reliable evidence, risks are identified and tracked, and the organization remains ready for audits and regulatory requirements.
This is a great opportunity for someone who enjoys hands-on GRC work, wants to take ownership of processes, and is interested in developing expertise across multiple areas of information security compliance.
Responsibilities
- Collect, validate, organize, and maintain audit and security-control evidence
- Test assigned security controls, identify gaps, and prepare clear and traceable evidence packages
- Support internal and external audits, including SOC 2, DORA, and CySEC-related assurance activities
- Maintain control records, evidence repositories, findings, remediation actions, owners, and deadlines
- Perform third-party security assessments, including supplier tiering
.jpg?1757614389)